Cross Site Scripting Vulnerability in Intelbras RF 301K
CVE-2025-4996
What is CVE-2025-4996?
A vulnerability exists in the Intelbras RF 301K version 1.1.5, related to improper processing of the Add Static IP component, which enables an attacker to execute a cross site scripting (XSS) attack. By manipulating the argument 'Description', an attacker may be able to inject arbitrary scripts, which can be executed in the context of a user’s browser. This vulnerability may allow attackers to potentially steal session cookies, credentials, or perform other malicious actions. This issue has been publicly disclosed, making it crucial for affected users to implement remediation measures promptly.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
RF 301K 1.1.5
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
